[Top][All Lists]

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [rdiff-backup-users] Prevent rdiff-backup from deleting?

From: Dominic Raferd
Subject: Re: [rdiff-backup-users] Prevent rdiff-backup from deleting?
Date: Mon, 14 Nov 2011 13:41:09 +0000
User-agent: Mozilla/5.0 (Windows NT 5.1; rv:8.0) Gecko/20111105 Thunderbird/8.0

I think (but haven't tried) you could alter the rdiff-backup option text like this (this is under Ubuntu 10.04, the location might differ with another OS):

sed -i 's/remove-older-than/remove-older-thax/g' /usr/share/pyshared/rdiff_backup/*.py

So unless an infiltrator knew the new command name (remove-older-thax in the example above), they couldn't use it.


On 11/11/2011 20:51, Grant wrote:
I'm using rdiff-backup in an automated "push" arrangement with access
to the backup server provided via SSH keys and restricted to the
rdiff-backup command like command="rdiff-backup --server".  I think an
infiltrator could delete a compromised machine's backups from the
backup server like this:

rdiff-backup --remove-older-than 1s address@hidden::/path/to/backup

Is there any way to prevent something like that from happening?

- Grant

rdiff-backup-users mailing list at address@hidden
Wiki URL: http://rdiff-backup.solutionsfirst.com.au/index.php/RdiffBackupWiki

reply via email to

[Prev in Thread] Current Thread [Next in Thread]